63

Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Embed Size (px)

DESCRIPTION

 

Citation preview

Page 1: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 2: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Andy Malone

The Cloud: One small step for man. One giant leap for IT

Page 3: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 4: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Microsoft MVP (Enterprise Security)

Microsoft Certified Trainer (18 years)

Founder: Cybercrime Security Forum!

International Event Speaker

Winner: Microsoft Speaker Idol 2006

Andy Malone(United Kingdom)

Follow me on Twitter @AndyMalone

Page 5: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Agenda

The futureThe

Snowden Effect

Privacy & Surveillance

Security & Identity

What drives the cloud

Revolution or Evolution

Page 6: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 7: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The Journey from Revolution to Evolution

The Industrial Revolution

1760 - 1840

The Internet Revolution

1980 - 2005

The Industrial Internet

2005 - Present

Page 8: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The Mainframe Era

The Home Computer Revolution

The PC Dream

The Internet Age

The Mobile Era

The Cloud Era

Revolution or Evolution

Page 9: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The Personal Computer Revolution

Page 10: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Storage Driven Revolution

Punched Tape

Magnetic Tape

Floppy Disk

Compact Disk &

Variants

Hard Drive

HDD & Variants

USB Portable Storage

Cloud Storage

Page 11: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The Explosion of Data• Challenges• Anytime, anywhere, any

device connectivity• Explosion of data in all areas• Discover, search, and analyze

information in near real-time

• Responses

• Massive build-out of data centers

• Innovations in technologies• From infrastructure-focused to

user-centric deployment • New business models

Doubling every

2 years

Page 12: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

What drives the cloud?

Consumerism High Speed Connections

Elastic Data Storage

Data center Reliability

99.9% SLASimple

ManagementSafe & Secure

Page 13: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The magic of Smart Innovation

Page 14: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The magic of software

Page 15: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Cisco Confidential

Execution Platforms at Scale

(Developers)

Infrastructure at Scale

(System Administrators)

Cloud Service Delivery at Scale (Public / Private Cloud Providers)

Applications at Scale

(End users)

Cloud Solutions

SaaS (Software as a Service (End users)

PaaS (Platform as a Service) Developers

IaaS (Infrastructure as a Service (Administrators

Enabling Technology (Cloud Service Delivery at Scale(Public / Private Cloud Providers)

Page 16: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Cloud Deployment Models

Public Cloud

Private Cloud

Hybrid Cloud

Virtual Private Cloud

Personal Cloud

Page 17: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Hybrid IT

• Hybrid Support & the Commons• First-party Applications• Total Cost of Ownership

Private • Hybrid Support & the Commons • First-party Applications• Higher-level Services

PublicMicrosoft Solutions

Page 18: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

• Firstly many vendors are moving to cloud hosted software

• As such…– Smaller entities expected to migrate

fully to the cloud (e.g. Office 365)

– Medium entities will typically look at a cloud or Hybrid solutions

– Larger entities may typically use Private or Hybrid solutions

In the Cloud World: Size Matters

Page 19: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 20: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

• Separate credential from on-premises credential

• Authentication occurs via cloud directory service

• Password policy is stored in Office 365

• Does not require on-premises server deployment

• Same credential as on-premises credential

• Authentication occurs via on-premises directory service

• Password policy is stored on-premises

• Requires on-premises DirSync server

• Solutions include Dirsync & Password Sync

• Or Dirsync & On-premises ADFS server

Single Sign On!

Identity & the Microsoft Cloud

Page 21: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

What is Windows Azure Active Directory?

• Customized Version of ADLDS / ADAM

• Every Office 365 Customer is an Azure AD Tennant

• Designed primarily to meet the needs of cloud applications

• Extends Customers Active Directory into the cloud

• Think of it as a Fish on a Hook!

• Identity as a service: essential part of Platform as a Service

Page 22: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Relationship to Windows Server AD

• On-premises and cloud Active Directory managed as one

• Directory information synchronized to cloud, made available to cloud apps via roles-based access control

• Federated authentication enables single sign on to cloud applications

Page 23: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Why is WAAD So important

While enterprises work to consolidate identity system on-premises, cloud apps are fragmenting identity… again

Page 24: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 25: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Knowing where your data is stored

Page 26: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

10 – 100 Datacenters (DCs) worldwide

Multiple Content Delivery Network (CDN) “edge nodes” around the world

Datacenter network conn

Know where your Data is Stored

Page 27: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Microsoft Cloud PrinciplesOr the Gotcha’s you need to understand!

Page 28: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Microsoft Cloud compliance

Data Processing Agreement

EU Model Clauses

ISO27001

US Health Insurance Portability and Accountability Act

EU Safe Harbor

Page 29: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Service Level Agreements (SLAs)

• Contract between customers and service providers of the level of service to be provided

• Contains performance metrics (e.g., uptime, throughput, response time)

• Problem management details• Documented security

capabilities• Contains penalties for non-

performance

Page 30: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 31: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Choices to keep Office 365 Customer Data separate from consumer services.

Office 365 Customer Data belongs to the customer.

Customers can export their data at any time.

The Microsoft strategy for privacy is to set a “high bar” around privacy practices that support global standards for data handling and transfer

Privacy in Office 365 & Windows Azure

No Mingling

Data Portability

No advertising products out of Customer Data.

No scanning of email or documents to build analytics or mine data.

No Advertising

Page 32: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Cisco Confidential

...Everything is Cloud

Comparison to the Consumer Cloud

Page 33: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

• Facebook, Google, Skype, Twitter, LinkedIn etc are all US BASED Companies. Who have access to your data?

• Social-networking sites allow seemingly trivial gossip to be distributed to a worldwide audience, sometimes making people the butt of rumours shared by millions of users across the Internet

• Public sharing of private lives has led to a rethinking of our current conceptions of privacy

The Consumer CloudThe Privacy Dilemma

Page 34: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Facebook Privacy…Confusing!

Page 35: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The Consumer / Public Cloud Privacy Dilemma

Linked In

Additionally, you grant LinkedIn a nonexclusive, irrevocable, worldwide, perpetual, unlimited, assignable, sublicenseable, fully paid up and royalty-free right to us to copy, prepare derivative works of, improve, distribute, publish, remove, retain, add, process, analyze, use and commercialize, in any way now known or in the future discovered, any information you provide, directly or indirectly to LinkedIn, including but not limited to any user generated content, ideas, concepts, techniques or data to the services, you submit to LinkedIn, without any further consent, notice and/or compensation to you or to any third parties. Any information you submit to us is at your own risk of loss.

Facebook

“You hereby grant Facebook an irrevocable, perpetual, non-exclusive, transferable, fully paid, worldwide license (with the right to sublicense) to (a) use, copy, publish, stream, store, retain, publicly perform or display, transmit, scan, reformat, modify, edit, frame, translate, excerpt, adapt, create derivative works and distribute (through multiple tiers), any User Content you (i) Post on or in connection with the Facebook Service or the promotion

thereof subject only to your privacy settings or (ii) enable a user to Post, including by offering a Share Link on your website and (b)

to use your name, likeness and image for any purpose, including commercial or advertising, each of (a) and (b) on or in connection with the FacebookService or the promotion thereof. You may remove your User Content from the Site at any time. If you choose to remove your User Content, the license granted above will automatically expire, however you acknowledge that the Company may retain archived copies of your User Content.”

Page 36: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Government Surveillance

Page 37: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 38: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 39: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Edward Snowden

• Revealed classified NSA details of a global surveillance apparatus run by the NSA and its Five Eyes partners, and numerous commercial and international partners

• Release was called the most significant leak in US history

Page 40: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Room 641A

Page 41: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Boundless Informant

• Powerful data mining tool for recording and analysing of intelligence

• Uses Big Data capture technology & provides near real time business intelligence to tactical & strategic decision makers

• Looks for visible trends, Deep metadata extraction

• Raw blob data analytics & back end processing (MapReduce, HDFS, Cloudbase)

Page 42: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The Technology behind Boundless Informant

• CloudBase is an open source data warehouse system for upto Pb scale analytics

• Built on top of Map-Reduce architecture

• Analyses using ANSI SQL to directly query large-scale log files arising in web site, telecommunications or IT operations

• Allows you to query flat log files using ANSI SQL

• Visit CloudBase home page for details-http://cloudbase.sourceforge.net

Page 43: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

The Technology behind Boundless Informant

• MapReduce is based upon Intel’s Predictive Analytics platform for the capture and analysis of Big blob data

• Combines Hardware & Apache Hadoop Software

• Many applications including commercial, military, energy management etc

Page 44: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Project PRSIM

Page 45: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 46: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 47: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

A word about NSA Suite B Encryption

Page 48: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Current NSA / CIA Surveillance Programs • Aircap

• BlackPerl

• Boundless Informant

• Cineplex

• XKeyscore

• PRISM

• Creek

• Crossbones

• Cultwave

• Cultweave

• Cybertrans

• Dishfire

• Double Arrow

• Dragonfly

• Wealthy Cluster

• Hightide

• Skywriter

• Jolly Rodger

• Kingfish

• Liquid fire

• Messiah

• Night surf

• Normal Run

• Mailorder

• Pinwale

• Taperplay

• Tarotcard

• Twisted Path

• Yellowstone

Page 49: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

“I have nothing to hide”

Page 50: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 51: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 52: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

“For to be free is not merely to cast off one's

chains, but to live in a way that respects and

enhances the freedom of others”

Nelson Mandela

Page 53: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 54: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

“If there is no right to privacy then there can be

no true freedom of expression and therefore

no true democracy”

Dilma Vana Rousseff

Page 55: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Is it right that the foundational Technologies of the Internet, Cryptographic

Algorithms, Domain names, IP Address backbone be dominated by the One

Nation? Perhaps Is it time for this infrastructure to be internationally managed

Independently of any one Country?

Finding the Correct Balance!

Page 56: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 57: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 58: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

A Bill in Everyone’s Home

Announcing:Microsoft Bill V2.0…

Now Everyone Can Have One….

Page 59: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

"The world as we have created it is a process of our thinking. It cannot be changed without changing our thinking."

Page 60: Andy Malone - Keynote: the cloud one small step for man one giant leap for it
Page 61: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

“It’s not about the destination. It’s about the journey”

Page 62: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Join me for my other NIC sessions…

Migrating to Office

365

The new Office 365 for IT Pro's

Office 365 Security

Deep Dive

Page 63: Andy Malone - Keynote: the cloud one small step for man one giant leap for it

Thank you

Please evaluate the session before you leave